CVE-2025-0417: Valmet Dna
High severity, CVSS 7.0. EPSS: 0.2% chance of exploitation in the next 30 days.
Lack of protection against brute force attacks in Valmet DNA visualization in DNA Operate. The possibility to make an arbitrary number of login attempts without any rate limit gives an attacker an increased chance of guessing passwords and then performing switching operations.
Affected products
- Valmet Valmet Dna: from C2007, up to and including C2024
Published 2025-04-01. Last modified 2026-06-17.